Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-18643

Опубликовано: 07 янв. 2021
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

Rock RMS versions before 8.10 and versions 9.0 through 9.3 fails to properly validate files uploaded in the application. The only protection mechanism is a file-extension blacklist that can be bypassed by adding multiple spaces and periods after the file name. This could allow an attacker to upload ASPX code and gain remote code execution on the application. The application typically runs as LocalSystem as mandated in the installation guide. Patched in versions 8.10 and 9.4.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:sparkdevnetwork:rock_rms:*:*:*:*:*:*:*:*
Версия до 8.10 (исключая)
cpe:2.3:a:sparkdevnetwork:rock_rms:*:*:*:*:*:*:*:*
Версия от 9.0 (включая) до 9.4 (исключая)

EPSS

Процентиль: 79%
0.01302
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-434

Связанные уязвимости

github
больше 3 лет назад

Rock RMS versions before 8.10 and versions 9.0 through 9.3 fails to properly validate files uploaded in the application. The only protection mechanism is a file-extension blacklist that can be bypassed by adding multiple spaces and periods after the file name. This could allow an attacker to upload ASPX code and gain remote code execution on the application. The application typically runs as LocalSystem as mandated in the installation guide. Patched in versions 8.10 and 9.4.

EPSS

Процентиль: 79%
0.01302
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-434